KDDI confirmed a major data breach affecting 12.23 million email users and 7.61 million stolen passwords after hackers exploited a software vulnerability in its foundational email system. The company has patched the flaw, urged mandatory password resets, and warned users about phishing and credential-stuffing risks. #KDDI…
Category: Cyber Attack
The Community of Communes of Pays du Mont-Blanc (CCPMB) was indirectly affected by a major cyberattack that hit its internet operator, Phibee Telecom, causing outages to its website, email addresses, and phone services. Phibee reported malicious deletion of telecom system configurations and backups, while stating that no ransomware was used. #CCPMB #PhibeeTelecom
An investigation was launched after an internal application linked to the Kerala Police website, which manages internal files, experienced a malfunction that authorities suspect may be the result of a cyberattack. The police said no data breach has been detected, while the internal file system has been offline for four days and the public website remains operational. #KeralaPolice #Keralapolice.gov.in
Since April 2026, O-UNC-066, also known as Pink, has used a panel-controlled phishing kit and vishing scheme to target Microsoft 365 passkey enrollment and trick users into authorizing a fraudulent passkey. Okta observed the activity across multiple industries, with the attackers primarily seeking data extortion, though the kit does not handle third-party federation and no direct Microsoft account compromise was observed. #O-UNC-066 #Pink #Microsoft365 #Okta
A threat actor known as derm0nix, linked to Hackero$ Crew, claims to have breached the Portal de Salud de Culiacán in Mexico and leaked 4,045 patient records for free. The alleged data includes minors’ sensitive medical information, CURP national ID numbers, and detailed medical and reproductive histories, but the claim remains…
A threat actor known as 84City allegedly posted an SQL dump tied to ESGI, a French IT school, claiming it contains 26,451 student enrollment records. The exposed data may include names, contact details, addresses, class and program information, and school Active Directory logins, but the claim remains unverified. #ESGI #84City #ActiveDirectory…
A threat actor calling itself TheSyndicate claims to have fully compromised Nayax and is threatening to release over 100TB of stolen data, including more than 1 billion card records, KYC data, and internal credentials. The claim is unverified, and no data has yet been publicly released. #Nayax #TheSyndicate #NYAX…
Follow.fr, a French healthcare platform, is reported to have 2,052,123 patient records offered for sale after a mass export of patient lists. The exposed data reportedly includes names, INSEE numbers, insurance details, and doctors, with Saturne named as the actor involved. #Follow.fr #Saturne #INSEE…
Tirupati Fincorp Ltd suffered a major cyberattack that disrupted its entire server infrastructure, causing data loss and rendering critical systems, including email services, unavailable. The company is still working with technical experts to restore operations and assess the full extent of the damage, while facing significant operational and regulatory risks. #TirupatiFincorpLtd
Jacksonville, Texas, took some city systems offline after detecting suspicious network activity on July 3 and brought in cybersecurity specialists to investigate. The city has increased monitoring and precautionary measures, but it has not disclosed which systems were affected or whether any personal data was accessed. #JacksonvilleTexas
Hahn Airport in Germany was targeted in a cybersecurity incident that is still under investigation, while airport operations and air traffic reportedly continued without restriction. The attack was later claimed by Safepay on July 6. #HahnAirport #Safepay
Spedidam was targeted by a ransomware attack against its information system, and the incident was reported to the CNIL and ANSSI while investigations continue. The organization says the new Artiste portal is not affected and will still launch as planned, even though the attack was later claimed by The Gentlemen. #Spedidam #TheGentlemen #CNIL #ANSSI #Artiste
The University of Alicante was hit by a serious cyberattack attempt that partially disrupted several internal systems, including virtual campus tools, before security teams managed to stop it. The university says no sensitive data was leaked and restoration of the affected services is underway. #UniversityOfAlicante
Pennington County in South Dakota is responding to a cybersecurity incident that has affected parts of its network, prompting the closure of most public offices on July 6 while recovery efforts continue. Essential services such as 911 and public safety operations remain operational as multiple agencies assist with the ongoing investigation. #PenningtonCounty
A U.S. government body paid Kairos a $1 million ransom after a data-extortion incident involving claims of more than 2 TB of stolen files and intense publication threats. The case highlights a data-only extortion campaign with unverified deletion claims, rapid fund splitting, and exchange touchpoints linked to ByBit, OKX, and BELQI. #Kairos #ByBit #OKX #BELQI #SBU